Russian Cyber War

Black Basta Ascension Attack Redux — can Patients Die of Ransomware?
Richi Jennings | | Ascension, Black Basta Ransomware, Conti, Conti Gang, Conti ransomware, Conti Ransomware Gang, exposed healthcare records, health care, health care organizations, Health Care Security, Health Insurance Portability and Accountability Act (HIPAA), healthcare, Healthcare company, Healthcare Compliance, Healthcare Compliance & Security, HIPAA, HIPAA Compliance, hipaa laws, RaaS, Ransomware, Ransomware-as-a-Service (RaaS), Russia, russia hacker, russia-based, russian, Russian Cyber War, Russian cybercrime, Russian government, Russian hacker, Russian hackers, Russian hacking, Russian malware, SB Blogwatch
Inglorious Basta(rds): 16 days on, huge hospital system continues to be paralyzed by ransomware—and patient safety is at risk ...
Security Boulevard

FBI/CISA Warning: ‘Black Basta’ Ransomware Gang vs. Ascension Health
Richi Jennings | | #StopRansomware, Ascension, Benefits of healthcare software, Black Basta Ransomware, cisa, CISA Threat Update, CISA warning, CISA.gov, Conti, Conti Gang, Conti ransomware, Conti Ransomware Gang, exposed healthcare records, health care, health care organizations, Health Care Security, Health Insurance Portability and Accountability Act (HIPAA), healthcare, Healthcare company, Healthcare Compliance, Healthcare Compliance & Security, HIPAA, HIPAA Compliance, hipaa laws, NSA/CISA, RaaS, Ransomware, Ransomware-as-a-Service (RaaS), Russia, russia hacker, russia-based, russian, Russian Cyber War, Russian cybercrime, Russian government, Russian hacker, Russian hackers, Russian hacking, Russian malware, SB Blogwatch
Будет! Russian ransomware rascals riled a Roman Catholic healthcare organization ...
Security Boulevard

FBI Warns: Ubiquiti EdgeRouter is STILL Not Secure
Richi Jennings | | APT28, Botnet disruption, Botnet Takedown, botnets, CVE-2023-23397, EdgeRouter, Fancy Bear, FBI warning, GRU, IC3, IC3.gov, Military Unit 26165, nsa, NSA/CISA, NTLM, NTLM Authentication, NTLM hash, NTLM leak, ntlm relay, Russia, russia hacker, russia-based, russian, Russian Cyber Interests, Russian Cyber War, SB Blogwatch, Ubiquiti, Ubiquiti breach, Ubiquiti Inc., Ubiquiti Networks, US FBI
GRU APT28 is back again: Fancy Bear still hacking ubiquitous gear, despite patch availability ...
Security Boulevard

Russian Internet Outage: DNSSEC Oops or Ukraine Hack?
Richi Jennings | | dns, DNS Attacks, DNS hijack, DNS hijacking, DNSSEC, Russia, Russia Exodus, Russia-Ukraine, russia-ukraine conflict, Russia's War on Ukraine, russian, Russian Cyber War, SB Blogwatch
It was DNS. It’s always DNS: Government ministry denies hackers hacked its network infrastructure ...
Security Boulevard

Russia Hacked Microsoft Execs — SolarWinds Hackers at it Again
Richi Jennings | | APT29, azure, Azure cloud, Cozy Bear, lateral attack, lateral movement, LateralMovement, Microsoft, Microsoft 365, Midnight Blizzard, password spraying, Russia, Russian Cyber War, Russian cybercrime, Russian FSB, Russian hacker, Russian hackers, Russian hacking, Russian Threat Actors, SB Blogwatch
AKA APT29: Midnight Blizzard / Cozy Bear makes it look easy (and makes Microsoft look insecure) ...
Security Boulevard

Russia Hacks Ukraine, Ukraine Hacks Russia — Day#658
Richi Jennings | | Kyivstar, Russia, russia hacker, Russia-Ukraine, russia-ukraine conflict, Russia's War on Ukraine, Russian Cyber War, Russian cybercrime, SB Blogwatch, Ukraine, ukraine conflict, Ukraine Cyber War, Ukraine cyberattack
When will it end? Russia takes down Kyivstar cellular system, Ukraine destroys Russian tax system ...
Security Boulevard

Russian FSB Targets US and UK Politicians in Sneaky Spear-Phish Plan
Richi Jennings | | 2FA phishing, advanced phishing threats, Aleksandrovich Peretuatko, Alexey Doguzhiev, Andrey Stanislavovich Korinets, Callisto Group, center 18, Evilginx, Federal Security Service, five eyes, FSB, linkedin, Phishing, Russia, russia hacker, russia-based, russian, Russian Cyber Interests, Russian Cyber War, Russian FSB, SB Blogwatch, Seaborgium, spear fishing, spear phishing attacks, spear-phishing, SpearPhishing, Star Blizzard, TA446
TA446’s new TTPs: “Star Blizzard” FSB team called out by Five Eyes governments (again) ...
Security Boulevard

‘LitterDrifter’ Russian USB Worm Leaks from Ukraine War Zone
Richi Jennings | | APT, Aqua Blizzard, Armageddon, computer worm, Flash drive, FSB, Gamaredon, Iron Tilden, LitterDrifter, Malware, Primitive Bear, Russia, russia hacker, Russia-Ukraine, russia-ukraine conflict, Russia's War on Ukraine, Russian Cyber War, Russian cybercrime, Russian FSB, SB Blogwatch, self-replicating worm, Shuckworm, Trident Ursa, Ukraine, ukraine conflict, Ukraine Cyber War, Ukraine cyberattack, Ukraine/European Security, USB, USB malware, USB Sticks, worm, worms
FSB APT USB VBS LNK DLL: WTH? Flash drive sharing malware escapes Україна. Gamaredon fingered as perps ...
Security Boulevard

COSMICENERGY: ‘Russian’ Threat to Power Grids ICS/OT
Richi Jennings | | COSMICENERGY, electric grid, electrical grid, Electrical grids, energy grid, grid cyber attack, ICS, IEC 60870-5-104, IEC-104, INCONTROLLER, Industroyer, Industroyer2, Malware, OT, power grid, Power-Grid Security, Red Team, Red team exercises, red team operations, red team testing, Red Teaming, Red Teams, red-team-tools, redteam, Russia, Russia Exodus, Russia power grid, Russia-Ukraine, russia-ukraine conflict, Russia's War on Ukraine, russian, Russian Cyber War, SB Blogwatch, Solar Polygon, triton, TRITON ICS malware, Triton malware
Shouty name—dangerous game. Red-team tool ripe for misuse ...
Security Boulevard